logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-42969

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-42969

Description:
The py library through 1.11.0 for Python allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data, because the InfoSvnCommand argument is mishandled. Note: This has been disputed by multiple third parties as not being reproduceable and they argue this is not a valid vulnerability.
Last updated date:
08/03/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/18/2022
Reference url to background

https://github.com/pytest-dev/py/blob/cb87a83960523a2367d0f19226a73aed4ce4291d/py/_path/svnurl.py#L316

Type:
exploit
Confidence:
HIGH
Date of publishing:
10/18/2022
Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy